News
TheGentlemen Ransomware Group Claims Attack on Advantage Home Health Care · Data BreachCraneware Healthcare Billing Software Breach: Hackers Steal 'Significant Volume' of Data from Vendor Used by Thousands of U.S. Hospitals and Pharmacies · Data BreachQilin Ransomware Group Claims Attack on Hillebrand Home Health · Data BreachLake Region Healthcare Discloses May 2025 Network Intrusion Exposing Patient SSNs, Medical Records, and Financial Data · Data BreachFamily Health Centers of Southern Indiana Discloses January 2026 Network Intrusion Exposing Patient PHI Including Social Security Numbers · Data BreachInterlock Ransomware Group Claims 540 GB from Texas Hearing Institute, Nearly 30,000 Pediatric Patients Notified · Data BreachWisconsin Department of Health Services Reports HIPAA Breach Affecting 8,157 Medicaid Recipients After Benefits Letters Mailed to Wrong Addresses · Data BreachAmazon's One Medical Seniors Hit by ShinyHunters Extortion Group: 8.8TB of Legacy Patient Data at Risk · Data BreachTheGentlemen Ransomware Group Claims Attack on Advantage Home Health Care · Data BreachCraneware Healthcare Billing Software Breach: Hackers Steal 'Significant Volume' of Data from Vendor Used by Thousands of U.S. Hospitals and Pharmacies · Data BreachQilin Ransomware Group Claims Attack on Hillebrand Home Health · Data BreachLake Region Healthcare Discloses May 2025 Network Intrusion Exposing Patient SSNs, Medical Records, and Financial Data · Data BreachFamily Health Centers of Southern Indiana Discloses January 2026 Network Intrusion Exposing Patient PHI Including Social Security Numbers · Data BreachInterlock Ransomware Group Claims 540 GB from Texas Hearing Institute, Nearly 30,000 Pediatric Patients Notified · Data BreachWisconsin Department of Health Services Reports HIPAA Breach Affecting 8,157 Medicaid Recipients After Benefits Letters Mailed to Wrong Addresses · Data BreachAmazon's One Medical Seniors Hit by ShinyHunters Extortion Group: 8.8TB of Legacy Patient Data at Risk · Data Breach
Beginnerfront deskpractice managerprovidervendor

Your HIPAA basics checklist

How to use medcomply.ai's plain-English checklist to see gaps before they become investigations.

TL;DR

Use the interactive checklist to track training, BAAs, workstations, and more. Progress saves in your browser so you can work through it over time.

Updated 2026-04-21

This short article pairs with our interactive HIPAA checklist, a practical way to see whether your basics are covered.

Why a checklist helps

Compliance is not one big project you finish once. It is a set of promises your practice makes to patients and regulators: we train people, we lock systems, we have BAAs, we respond when things break.

The checklist turns those promises into yes/no questions you can actually answer.

How to use it

  1. Open the full checklist.
  2. Choose your role filter if you want a shorter list.
  3. Check items off as you verify them, saves on this device.
  4. Use PDF export before a leadership meeting or share a link with your team.

What to do with gaps

Do not hide them. Prioritize essentials first, Notice of Privacy Practices, training, workstation locks, BAAs for vendors with PHI, and a named privacy official for covered entities.

Then schedule make-up tasks like risk assessments and policy updates.

Not legal advice. Educational overview only; consult qualified counsel for your situation.